# Elasticsearch

**URL:** https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=14

[Latest](https://discuss.elastic.co/latest.md) · [Categories](https://discuss.elastic.co/categories.md) · [Tags](https://discuss.elastic.co/tags.md)

**Page:** 15

---

## [Eck-elasticsearch helm chart - how to properly set path.repo](https://discuss.elastic.co/t/eck-elasticsearch-helm-chart-how-to-properly-set-path-repo/383278)

<div class="topic-metadata">

**Author:** [@Scott\_Weller](https://discuss.elastic.co/u/Scott_Weller)\
**Replies:** 0\
**Last updated:** [November 6, 2025, 11:38pm UTC](https://discuss.elastic.co/t/eck-elasticsearch-helm-chart-how-to-properly-set-path-repo/383278 "2025-11-06T23:38:14Z")

</div>

I have installed an ES cluster and kibana instance on k8s and verified both are working correctly. I am currently attempting to link a snapshot repository created for our prod cluster to my dev cluster which was provisio…

---

## [AI Assistant with local LLM](https://discuss.elastic.co/t/ai-assistant-with-local-llm/383091)

<div class="topic-metadata">

**Author:** [@arcsons](https://discuss.elastic.co/u/arcsons)\
**Replies:** 8\
**Last updated:** [November 6, 2025, 9:21pm UTC](https://discuss.elastic.co/t/ai-assistant-with-local-llm/383091 "2025-11-06T21:21:25Z")

</div>

Hi, I’m trying to setup an AI connector for my local LLM. I have ngnix as reverse proxy with an API key. $ curl -s http://x.x.x.x:8080/api/chat -H "Authorization: $OKEY" -H "Content-Type: application/json" -d '{ …

---

## [Calculating size for status](https://discuss.elastic.co/t/calculating-size-for-status/383209)

<div class="topic-metadata">

**Author:** [@YousefNein](https://discuss.elastic.co/u/YousefNein)\
**Replies:** 4\
**Last updated:** [November 6, 2025, 8:33pm UTC](https://discuss.elastic.co/t/calculating-size-for-status/383209 "2025-11-06T20:33:54Z")

</div>

Is there a proper way to calculate EPS or GB per day using Elasticsearch or Kibana dashboards?

---

## [Running Multiple Elasticsearch Nodes per VM to Bypass 32 GB Heap Limit Best Practice](https://discuss.elastic.co/t/running-multiple-elasticsearch-nodes-per-vm-to-bypass-32-gb-heap-limit-best-practice/383269)

<div class="topic-metadata">

**Author:** [@YousefNein](https://discuss.elastic.co/u/YousefNein)\
**Replies:** 1\
**Last updated:** [November 6, 2025, 1:14pm UTC](https://discuss.elastic.co/t/running-multiple-elasticsearch-nodes-per-vm-to-bypass-32-gb-heap-limit-best-practice/383269 "2025-11-06T13:14:39Z")

</div>

I understand that a single Elasticsearch node shouldn’t have more than ~32 GB of JVM heap, but can I run multiple Elasticsearch containers (Let’s say 2) on the same machine with their heap set to 32 GB whilst having the …

---

## [Maximum cpu cores for a data node](https://discuss.elastic.co/t/maximum-cpu-cores-for-a-data-node/383267)

<div class="topic-metadata">

**Author:** [@yuswanul](https://discuss.elastic.co/u/yuswanul)\
**Replies:** 1\
**Last updated:** [November 6, 2025, 12:50pm UTC](https://discuss.elastic.co/t/maximum-cpu-cores-for-a-data-node/383267 "2025-11-06T12:50:26Z")

</div>

Hi there, i’m just wondering. Is there a maximum number of CPU cores for a data node? Because, for the memory, it is limited to 30-32 GB Heap, right? But does CPU have the same thing? or can we scale it up as high as we…

---

## [Website search not returning consistent results](https://discuss.elastic.co/t/website-search-not-returning-consistent-results/383256)

<div class="topic-metadata">

**Author:** [@joeroot](https://discuss.elastic.co/u/joeroot)\
**Replies:** 2\
**Last updated:** [November 6, 2025, 9:47am UTC](https://discuss.elastic.co/t/website-search-not-returning-consistent-results/383256 "2025-11-06T09:47:50Z")

</div>

Hi everyone, I’m running a restaurant-based website that focuses on Texas Roadhouse menu updates, reviews, and nearby location listings. I’ve implemented Elasticsearch to power the internal search function on my site so…

---

## [Unable to load a trained model on ML node with sufficient memory](https://discuss.elastic.co/t/unable-to-load-a-trained-model-on-ml-node-with-sufficient-memory/383252)

<div class="topic-metadata">

**Author:** [@gueri](https://discuss.elastic.co/u/gueri)\
**Replies:** 0\
**Last updated:** [November 5, 2025, 5:52pm UTC](https://discuss.elastic.co/t/unable-to-load-a-trained-model-on-ml-node-with-sufficient-memory/383252 "2025-11-05T17:52:09Z")

</div>

Hello Here is the scenario. I have 2 ML nodes with 8 procs/64 Gb on Elastic 8.15.3. I start by loading a large bge\_m3 model with 1 allocation and 1 thread. :slight\_smile: As you can see on picture, one node had a …

---

## [Highlighting not working correctly with greek analyzer](https://discuss.elastic.co/t/highlighting-not-working-correctly-with-greek-analyzer/382873)

<div class="topic-metadata">

**Author:** [@epistola](https://discuss.elastic.co/u/epistola)\
**Replies:** 5\
**Last updated:** [November 5, 2025, 8:10am UTC](https://discuss.elastic.co/t/highlighting-not-working-correctly-with-greek-analyzer/382873 "2025-11-05T08:10:31Z")

</div>

Hello everyone, I have a problem with the highlighting in Elasticsearch. I have a field in an index like the following: "skepseis": { "type": "nested", "properties": { "text": { "type": "text", "analyzer": "g…

---

## [Query execution drastically increased after upgrade elastic cloud hosted deployment from v8.18.4 to v9.0.4](https://discuss.elastic.co/t/query-execution-drastically-increased-after-upgrade-elastic-cloud-hosted-deployment-from-v8-18-4-to-v9-0-4/382908)

<div class="topic-metadata">

**Author:** [@fpeter](https://discuss.elastic.co/u/fpeter)\
**Replies:** 8\
**Last updated:** [November 5, 2025, 6:14am UTC](https://discuss.elastic.co/t/query-execution-drastically-increased-after-upgrade-elastic-cloud-hosted-deployment-from-v8-18-4-to-v9-0-4/382908 "2025-11-05T06:14:38Z")

</div>

We had a really long query (it could be up to 30k lines), and in v8 it took around 50 ms. After upgrading to v9, the query took around 400–500 ms. When we profiled it, the results were essentially identical in profile.s…

---

## [Slowness in Performance of ElasticSearch/Kibana](https://discuss.elastic.co/t/slowness-in-performance-of-elasticsearch-kibana/383084)

<div class="topic-metadata">

**Author:** [@geoffrey](https://discuss.elastic.co/u/geoffrey)\
**Replies:** 7\
**Last updated:** [November 5, 2025, 5:20am UTC](https://discuss.elastic.co/t/slowness-in-performance-of-elasticsearch-kibana/383084 "2025-11-05T05:20:38Z")

</div>

I am running elasticsearch and kibana at V9.2.0: and have datasets that are very small: I am using edge with Kibana and I notice as more documents have been loaded that I can refresh the webpage (using edge refre…

---

## [Elasticsearch](https://discuss.elastic.co/t/elasticsearch/383028)

<div class="topic-metadata">

**Author:** [@Varinder](https://discuss.elastic.co/u/Varinder)\
**Replies:** 44\
**Last updated:** [November 4, 2025, 7:16pm UTC](https://discuss.elastic.co/t/elasticsearch/383028 "2025-11-04T19:16:09Z")

</div>

‘‘‘ Hi Folks, #lasticsearch.yml file of node ip ending in 17 ( 8.15.2) still not upgraded ’’’ path.data: /var/lib/elasticsearch/data path.logs: /var/log/elasticsearch/logs xpack.security.enabled: false xpack.secur…

---

## [HighLevelRestClient7.17.5 date\_histogram offset is unexpected](https://discuss.elastic.co/t/highlevelrestclient7-17-5-date-histogram-offset-is-unexpected/383208)

<div class="topic-metadata">

**Author:** [@ZLEternity](https://discuss.elastic.co/u/ZLEternity)\
**Replies:** 0\
**Last updated:** [November 4, 2025, 12:35pm UTC](https://discuss.elastic.co/t/highlevelrestclient7-17-5-date-histogram-offset-is-unexpected/383208 "2025-11-04T12:35:57Z")

</div>

DateHistogramAggregationBuilder dateHistogramAggregationBuilder = AggregationBuilders .dateHistogram(AggValueEnum.TIME\_INTERVAL.getAggName()).field(AggValueEnum.TIME\_INTERVAL.getField()).minDocCount(0).extendedBo…

---

## [Negative Request Breaker Estimated Size](https://discuss.elastic.co/t/negative-request-breaker-estimated-size/383184)

<div class="topic-metadata">

**Author:** [@Aditya\_Teltia](https://discuss.elastic.co/u/Aditya_Teltia)\
**Replies:** 4\
**Last updated:** [November 4, 2025, 10:30am UTC](https://discuss.elastic.co/t/negative-request-breaker-estimated-size/383184 "2025-11-04T10:30:41Z")

</div>

Hi Everyone, I am using ES-8.15.5 and while using this in production I am getting negative value of requests circuit breaker estimated\_size\_in\_bytes. Not able to reproduce this locally either. I am having hard time ide…

---

## [Trial Extension Needed for Self-Hosted ML POC](https://discuss.elastic.co/t/trial-extension-needed-for-self-hosted-ml-poc/383202)

<div class="topic-metadata">

**Author:** [@EUphorik](https://discuss.elastic.co/u/EUphorik)\
**Replies:** 0\
**Last updated:** [November 4, 2025, 10:24am UTC](https://discuss.elastic.co/t/trial-extension-needed-for-self-hosted-ml-poc/383202 "2025-11-04T10:24:37Z")

</div>

Hello Elastic Team, We are mid-way through an urgent Proof of Concept (POC) involving a self-hosted deployment, specifically focusing on validating the Kibana Machine Learning (ML) module. Our trial license for Elastic…

---

## [Elasticesearch java client How to initiate a snapshot creation request?](https://discuss.elastic.co/t/elasticesearch-java-client-how-to-initiate-a-snapshot-creation-request/383198)

<div class="topic-metadata">

**Author:** [@lq\_dq](https://discuss.elastic.co/u/lq_dq)\
**Replies:** 1\
**Last updated:** [November 4, 2025, 10:15am UTC](https://discuss.elastic.co/t/elasticesearch-java-client-how-to-initiate-a-snapshot-creation-request/383198 "2025-11-04T10:15:17Z")

</div>

I couldn't find any examples of creating snapshots using the Elasticsearch Java client.

---

## [How to reindex a data stream into another data stream?](https://discuss.elastic.co/t/how-to-reindex-a-data-stream-into-another-data-stream/383131)

<div class="topic-metadata">

**Author:** [@dot-mike](https://discuss.elastic.co/u/dot-mike)\
**Replies:** 2\
**Last updated:** [November 3, 2025, 2:02pm UTC](https://discuss.elastic.co/t/how-to-reindex-a-data-stream-into-another-data-stream/383131 "2025-11-03T14:02:06Z")

</div>

Hi community, I’m trying to reindex data from one data stream to another. Basically, I want data from this data stream logs-syslog.myproduct.logs to go into logs-syslog.myproduct\_logs-default The issue is that when th…

---

## [No sufficient capacity to run baai\_bge\_m3 model](https://discuss.elastic.co/t/no-sufficient-capacity-to-run-baai-bge-m3-model/382693)

<div class="topic-metadata">

**Author:** [@gueri](https://discuss.elastic.co/u/gueri)\
**Replies:** 4\
**Last updated:** [November 3, 2025, 1:37pm UTC](https://discuss.elastic.co/t/no-sufficient-capacity-to-run-baai-bge-m3-model/382693 "2025-11-03T13:37:30Z")

</div>

Hi, My ML configuration is 2 nodes with this configuration for each node : ml.allocated\_processors\_double 8.0 ml.machine\_memory 62.4GB ml.config\_version 12.0.0 ml.max\_jvm\_size 4GB ml.allocated\_processors 8 I alr…

---

## [Terms Aggregation vs Field Collapse for Search Suggestions at Scale (100K+ unique values)](https://discuss.elastic.co/t/terms-aggregation-vs-field-collapse-for-search-suggestions-at-scale-100k-unique-values/383182)

<div class="topic-metadata">

**Author:** [@Yousif\_Alneamy](https://discuss.elastic.co/u/Yousif_Alneamy)\
**Replies:** 0\
**Last updated:** [November 3, 2025, 11:54am UTC](https://discuss.elastic.co/t/terms-aggregation-vs-field-collapse-for-search-suggestions-at-scale-100k-unique-values/383182 "2025-11-03T11:54:55Z")

</div>

I'm building a search suggestion feature and need help choosing between terms aggregation and field collapse for my use case. My Dataset: 3 million items in the index 100,000+ unique product names (\`brandName\` in …

---

## [Cannot access Elasticsearch outside](https://discuss.elastic.co/t/cannot-access-elasticsearch-outside/383153)

<div class="topic-metadata">

**Author:** [@Peter\_Penzov](https://discuss.elastic.co/u/Peter_Penzov)\
**Replies:** 1\
**Last updated:** [November 2, 2025, 2:06am UTC](https://discuss.elastic.co/t/cannot-access-elasticsearch-outside/383153 "2025-11-02T02:06:35Z")

</div>

I have a Oracle Cloud(OCI) machine on which I installed ElastciSearch 9.2.0 but I can access it only internally. root@instance-20253022-1222:/var/log/elasticsearch# curl -k --user elastic:zzzzzzz -X GET "https://localho…

---

## [ElasticSearch IPv6](https://discuss.elastic.co/t/elasticsearch-ipv6/383150)

<div class="topic-metadata">

**Author:** [@Peter\_Penzov](https://discuss.elastic.co/u/Peter_Penzov)\
**Replies:** 1\
**Last updated:** [November 1, 2025, 5:22pm UTC](https://discuss.elastic.co/t/elasticsearch-ipv6/383150 "2025-11-01T17:22:55Z")

</div>

I installed Elasticsearch 9.2.0 on Ubuntu VN hosted on Oracle OCI cloud. But I cannot connect outside. After listening the listening ports on the VM I see this: sudo netstat -ntlp Active Internet connections (only serv…

---

## [How can I speed up tokenizing in elasticsearch?](https://discuss.elastic.co/t/how-can-i-speed-up-tokenizing-in-elasticsearch/383141)

<div class="topic-metadata">

**Author:** [@orlenkoda5](https://discuss.elastic.co/u/orlenkoda5)\
**Replies:** 2\
**Last updated:** [November 1, 2025, 10:01am UTC](https://discuss.elastic.co/t/how-can-i-speed-up-tokenizing-in-elasticsearch/383141 "2025-11-01T10:01:10Z")

</div>

I use elasticsearch in social network product to receive and search documents (posts) created by users but there is a problem with searching just created document, it appears in search results after a while (1-2 minutes)…

---

## [Default sort in template with json source](https://discuss.elastic.co/t/default-sort-in-template-with-json-source/374221)

<div class="topic-metadata">

**Author:** [@orlenkoda5](https://discuss.elastic.co/u/orlenkoda5)\
**Replies:** 2\
**Last updated:** [November 1, 2025, 8:55am UTC](https://discuss.elastic.co/t/default-sort-in-template-with-json-source/374221 "2025-11-01T08:55:58Z")

</div>

Hi everyone, I have a question with default sorting using template with json source query. Here it is: PUT \_scripts/multipurpose\_template { "script": { "lang": "mustache", "source": """{"sort": {{#toJson}}sort{{/toJ…

---

## [Adding registered\_domain processor on fortinet module - what's the best way to do this?](https://discuss.elastic.co/t/adding-registered-domain-processor-on-fortinet-module-whats-the-best-way-to-do-this/383130)

<div class="topic-metadata">

**Author:** [@artschooldropout](https://discuss.elastic.co/u/artschooldropout)\
**Replies:** 0\
**Last updated:** [October 31, 2025, 3:32pm UTC](https://discuss.elastic.co/t/adding-registered-domain-processor-on-fortinet-module-whats-the-best-way-to-do-this/383130 "2025-10-31T15:32:17Z")

</div>

I'm trying to add the registered\_domain processor to extract the registered domain from destination.address in my Fortinet firewall logs (e.g., extract d-zone.ca from ns2-firewall.d-zone.ca). Environment: Filebeat: 8…

---

## [Upgrade to 9.x](https://discuss.elastic.co/t/upgrade-to-9-x/383126)

<div class="topic-metadata">

**Author:** [@zen.xen](https://discuss.elastic.co/u/zen.xen)\
**Replies:** 6\
**Last updated:** [October 31, 2025, 2:21pm UTC](https://discuss.elastic.co/t/upgrade-to-9-x/383126 "2025-10-31T14:21:33Z")

</div>

Hello, I use ELK 8.8, 3-node cluster, I would like to upgrade to the newest version, is there an easy way to upgrade it? Perhaps there are 2 ways to upgrade but I don’t know which one will be better: a. build new clus…

---

## [Elasticsearch snapshot to remote nas via nfs](https://discuss.elastic.co/t/elasticsearch-snapshot-to-remote-nas-via-nfs/382095)

<div class="topic-metadata">

**Author:** [@amine\_ghallab](https://discuss.elastic.co/u/amine_ghallab)\
**Replies:** 3\
**Last updated:** [October 30, 2025, 2:34pm UTC](https://discuss.elastic.co/t/elasticsearch-snapshot-to-remote-nas-via-nfs/382095 "2025-10-30T14:34:36Z")

</div>

Hello, I am running an Elasticsearch cluster on Kubernetes using the Elastic Cloud on Kubernetes (ECK) operator. Currently, my Elasticsearch data volume is reaching 80% usage, so I would like to configure a snapshot re…

---

## [Action\_request\_validation\_exception: \[action\_request\_validation\_exception\] Reason: Validation Failed: 1: id is missing](https://discuss.elastic.co/t/action-request-validation-exception-action-request-validation-exception-reason-validation-failed-1-id-is-missing/383039)

<div class="topic-metadata">

**Author:** [@junqiang\_ma](https://discuss.elastic.co/u/junqiang_ma)\
**Replies:** 4\
**Last updated:** [October 30, 2025, 12:57am UTC](https://discuss.elastic.co/t/action-request-validation-exception-action-request-validation-exception-reason-validation-failed-1-id-is-missing/383039 "2025-10-30T00:57:00Z")

</div>

We are using Elasticsearch 7.5.10 and indexing data into this cluster via a Node.js application (client version: "@elastic/elasticsearch": "7.17"). My index mapping is as follows: { "platform.fund.notices.test\_a": { …

---

## [Elastic elasticsearch-9.1.5-linux-x86\_64.tar.gz installation file issue](https://discuss.elastic.co/t/elastic-elasticsearch-9-1-5-linux-x86-64-tar-gz-installation-file-issue/382775)

<div class="topic-metadata">

**Author:** [@bodige.mahesh](https://discuss.elastic.co/u/bodige.mahesh)\
**Replies:** 5\
**Last updated:** [October 29, 2025, 10:35pm UTC](https://discuss.elastic.co/t/elastic-elasticsearch-9-1-5-linux-x86-64-tar-gz-installation-file-issue/382775 "2025-10-29T22:35:46Z")

</div>

HI Team, We are trying to install Elasticsearch 9.1.5 version on oel7 and jdk”21.0.7", while extracting the file, it is giving old date, could you please check and suggest if anything can be checked from ourend. tar: …

---

## [Is it possible to "warm up" indexes with low volume?](https://discuss.elastic.co/t/is-it-possible-to-warm-up-indexes-with-low-volume/382921)

<div class="topic-metadata">

**Author:** [@yeikel](https://discuss.elastic.co/u/yeikel)\
**Replies:** 8\
**Last updated:** [October 29, 2025, 10:19pm UTC](https://discuss.elastic.co/t/is-it-possible-to-warm-up-indexes-with-low-volume/382921 "2025-10-29T22:19:32Z")

</div>

I have an index with 9M documents, 1 shard and 1 replica that receives traffic very sporadically (less than 5 requests per hour). The ingestion rate of this index is less than 1/s A recurring pattern is that query respo…

---

## [Is this a bug at DateHistogram aggregation?](https://discuss.elastic.co/t/is-this-a-bug-at-datehistogram-aggregation/383069)

<div class="topic-metadata">

**Author:** [@vicety](https://discuss.elastic.co/u/vicety)\
**Replies:** 0\
**Last updated:** [October 29, 2025, 10:20am UTC](https://discuss.elastic.co/t/is-this-a-bug-at-datehistogram-aggregation/383069 "2025-10-29T10:20:46Z")

</div>

I was reading the source code of histogram aggregation and found this. // server/src/main/java/org/elasticsearch/search/aggregations/bucket/histogram/InternalDateHistogram.java // (line 358) private void addEmptyB…

---

## [Running XGBoost Re-Rank Models in Elasticsearch Ingest Pipelines](https://discuss.elastic.co/t/running-xgboost-re-rank-models-in-elasticsearch-ingest-pipelines/383054)

<div class="topic-metadata">

**Author:** [@Shell\_Dias](https://discuss.elastic.co/u/Shell_Dias)\
**Replies:** 0\
**Last updated:** [October 28, 2025, 5:59pm UTC](https://discuss.elastic.co/t/running-xgboost-re-rank-models-in-elasticsearch-ingest-pipelines/383054 "2025-10-28T17:59:11Z")

</div>

How can I run re-ranking models within ingest pipelines to create a custom field containing the classification result? For example: I have an XGBoost model that uses the predict method. I’d like to apply it to each doc…

[Previous page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=13)

[Next page](https://discuss.elastic.co/c/elastic-stack/elasticsearch/6.md?page=15)
